Summer 2018 SIEM Software - FeaturedCustomers

14
20 18 SUMMER CUSTOMER SUCCESS REPORT SIEM SOFTWARE CATEGORY

Transcript of Summer 2018 SIEM Software - FeaturedCustomers

2018

SUMMERCUSTOMERSUCCESSREPORT

SIEM SOFTWARE CATEGORY

SIEM SOFTWAREOVERVIEW

While Security Information and EventManagement software may be confused forincident response software, it actually provides alarger scope of IT and security managementfeatures. SIEM software generally combine avariety of security software into one singleplatform in order to centralize security operations.This facilitates the process of gaining andaccessing alerts and information of potentialthreats for security and IT teams allowing for easein identification, planning, and communication.

Capabilities of SIEM software include recordingfeatures that allow for reporting and storing logs,as well as tools to ensure that access is tosensitive systems is only granted to approvedpersonnel. Ultimately, these products help protectorganizations by bringing together security datafrom various components as well as being able todetect malicious activity that would otherwise notbe identified from a single host.

2

CUSTOMER SUCCESSSCORING METHODOLOGY

The FeaturedCustomers.com CustomerSuccess score is based on data from ourcustomer success content platform, socialpresence, as well as additional data aggregatedfrom online sources and social media properties.Our ranking engine applies an algorithm to all ofthe data collected to calculate the overallCustomer Success score. The overall CustomerSuccess score is a weighted average based on 3parts:

Content Score is affected by the following:

1. # of vendor generated customer successcontent pieces (case studies, successstories, testimonials, and customer videos)

2. Content quality score generated from allcustomer success content

3. % Change in Content over past 6 months4. Number of employees (based on social

media and public resources)

Social Score is affected by the following:

1. # of LinkedIn followers2. # of Twitter followers3. # of Facebook likes4. Number of employees (based on social

media and public sources)5. Engagement across all platforms

Company Score is affected by the following:

1. Number of employees (based on socialmedia and public resources)

2. Vendor momentum based on web traffic andsearch trends

3. Employee satisfaction and engagement(based on social network ratings)

4. % traffic increase to your CustomerReferences

5. Lower Funnel SEO Key Term Rankings

CUSTOMER SUCCESS AWARDS

Market Leader (90 - 100)

Vendor on FeaturedCustomers.comwith substantial customer base &market share. Leaders have thehighest ratio of customer successcontent, content quality score, andsocial media presence relative tocompany size.

Top Performer (85 - 89)

Vendor on FeaturedCustomers.comwith significant market presence andresources and enough customerreference content to validate theirvision. Top Performer's products arehighly rated by its customers but havenot achieved the customer base andscale of a Leader.

Rising Star (80 - 84)

Vendor on FeaturedCustomers.comthat does not have the marketpresence of Market Leaders or TopPerformers, but understands wherethe market is going and has disruptivetechnology. Rising Stars have beenaround long enough to establishmomentum and a minimum amount ofcustomer reference content along witha growing social presence.

3

4

ALL VENDORS

ABOUT SPLUNKSplunk provides the leading software platform for real-time Operational Intelligence. Splunksoftware and cloud services enable organizations to search, monitor, analyze and visualizemachine-generated big data coming from websites, applications, servers, networks, sensors andmobile devices. Splunk is the leading software platform for machine data that enables customersto gain real-time Operational Intelligence.

TRUSTED BY:

"Meeting our compliance requirements used be atime-consuming headache. Splunk has transformed theprocess and we can now do what's needed, hassle-free.”

Manager of Production DesignAmaya Gaming

“My colleagues are amazed when I pull up an instance ofSplunk and show logs, performance data, and applicationdata, in one location, sortable by time.”

Shaun ButlerSr. Technology Specialist, Infrastructure, Corporate Express

“Splunk helped us establish the baseline for our company'soperational model and helped us identify and understandanomalies to that baseline. And as the business has evolvedand changed, Splunk has helped us understand how thebaseline is changing.”

Mark J. DayExecutive Vice President, Research and Development, iRhythm

Technologies

“With our operations already in the cloud, Splunk Cloud isideal for us. We get the full functionality of Splunk Enterprise,which means the real-time data and insights to optimize ourservices, refine our processes and rapidly put software intoproduction. But now, someone else minds the servers andaddresses capacity.”

Software EngineerMindTouch

CONTENT

100SOCIAL

96COMPANY

95TOTAL WEIGHTEDSCORE: 99

READ ALL 413 CUSTOMER SUCCESS REVIEWS FROM SPLUNK USERS

5

ABOUT FORTINETFortinet protects the most valuable assets of some of the largest enterprise, service provider andgovernment organizations across the globe. Fortinet's fast, secure and global cyber securitysolutions provide broad, high-performance protection against dynamic security threats whilesimplifying the IT infrastructure. Fortinet strengthened by the industry's highest level of threatresearch, intelligence and analytics. Unlike pure-play network security providers, Fortinet cansolve organizations' most important security challenges, whether in networked, application ormobile environments - be it virtualized/cloud or physical.

TRUSTED BY:

"With a network like ours and the demands that are placedon it, there is no room for second-best security. Fortinetdelivers high-performance enterprise firewalling that enablesus to drop malicious traffic and allow legitimate traffic in sothe business can keep running."

Mark GraffGlobal Chief Information Security Officer, Nasdaq OMX

“When we added up the features that Fortinet brought to theequation and looked at the price/performance, the decisionwas clear-cut. Fortinet’s FortiGate 1000C Next GenerationFirewalls were, dollar-for-dollar, the most costeffective andfunction-rich enterprise solutions on the market.”

Hammad AkbarNetwork Consultant, Advent One

“You can run a highly successful market with world classsecurity, and we’ve done that with Fortinet.”

Michael AikinsChief Operations and Technology, Chi-X

"Fortinet’s solutions are helping us to manage a large, oftendifficult network that comes with many different use cases.The result is that we’re protecting Cambridge University’sstudents, staff, research, data integrity, and, ultimately, itsreputation."

Ashley CulverNetwork Services Manager, University of Cambridge

CONTENT

100SOCIAL

90COMPANY

94TOTAL WEIGHTEDSCORE: 98

READ ALL 326 CUSTOMER SUCCESS REVIEWS FROM FORTINET USERS

6

ABOUT LOGRHYTHMLogRhythm provides enterprise-class log management, log analysis and event management inan integrated solution that empowers organizations to comply with regulations, secure networks,and optimize IT operations. LogRhythm was positioned by Gartner Inc. in the visionariesquadrant of the Security Information and Event Management Magic Quadrant report for 2007.LogRhythm is privately held and based in Boulder, Colorado.

TRUSTED BY:

"LogRhythm enabled us to see logs from our switches andfirewalls that previously would have been missed, and wouldhave resulted in the University's data processing systemsbeing out of action for an extended period of time."

Paul KennedySecurity and Compliance Leader, University of Nottingham

"We used to collect and manage log data manually, but withLogRhythm we can now automate this process and have asingle view of the entire infrastructure. This means we cannow spot even the tiniest of events, including those whichwould have been missed in the past."

Jason CollinsIT Development Centre Manager, Endsleigh Insurance Services

"I would absolutely say we have gotten a good ROI on thisproduct. We have that comfort level that we're monitoringthese systems and meeting that PCI compliance for ourfranchisees. LogRhythm has enabled us to achieve PCIcompliance two years in a row now since we've started onthis path."

Rik StevenManager in the Corporate Project Management Office, CARA

"The intelligence provided by [LogRhythm's] advancedcorrelation not only allows us to identify current threats, butalso predict what might happen in the future. In addition toassisting with security monitoring, the LogRhythm solutionhas also proved useful in both identifying and resolving anynetworking errors that arise."

Michael BrownGroup Head of Security and Fraud Management, Callcredit

CONTENT

92SOCIAL

86COMPANY

89TOTAL WEIGHTEDSCORE: 92

READ ALL 82 CUSTOMER SUCCESS REVIEWS FROM LOGRHYTHM USERS

7

ABOUT ALIENVAULTAlienVault has simplified the way organizations detect and respond to today’s ever evolvingthreat landscape. Their unique and award-winning approach, trusted by thousands of customers,combines the essential security controls of their all in one platform, AlienVault Unified SecurityManagement, with the power of AlienVault’s Open Threat Exchange, the world’s largest crowdsourced threat intelligence community, making effective and affordable threat detection attainablefor resource constrained IT teams.

TRUSTED BY:

"At Save Mart, we use the AlienVault Unified SecurityManagement (USM) platform, which is an easy-to-use,affordable solution that enables us to effectively defendagainst today’s evolving threat landscape."

Stephen MolinaInformation Security Administrator, Save Mart Supermarkets

"Our business must be compliant with all applicationregulations, i.e. HIPAA, PCI. The USM AiO gives us thetools we need to be compliant and the reporting we need toprove it."

Daniel PressnerIT Director, Florida Orthopaedic Institute

"AlienVault USM provides the insight of what’s happeningwhere, when and by whom and gives us the ability to reviewand capture incidents that were previously undetected andtherefore unknown."

Philip ClarkeSecurity Manager Randall & Quilter Investment Holdings,

Randall & Quilter

"AlienVault gave us a platform that fits perfectly with ourmanaged security service offering and provides our clientswith a comprehensive solution for their data security andcompliance needs."

Mike KeremChief Technology Officer, TrustNet

CONTENT

93SOCIAL

89COMPANY

84TOTAL WEIGHTEDSCORE: 92

READ ALL 47 CUSTOMER SUCCESS REVIEWS FROM ALIENVAULT USERS

8

ABOUT SUMO LOGICSumo Logic is the next generation log management and analytics company that leverages BigData for real-time IT insights. Sumo Logic cloud-based service provides customers with real-timeinteractive analytics at unprecedented petabyte scale. The Sumo Logic service is powered bypatent-pending Elastic Log Processing™ and LogReduce™ technologies, and transforms logdata into actionable insights for IT operations, application management, and security andcompliance teams. Unlike expensive and complex premise-based solutions, the Sumo Logicservice has a low TCO, can be deployed instantly, scales elastically and requires zeromaintenance. Sumo Logic is based in Silicon Valley and is backed by Greylock Partners andSutter Hill Ventures.

TRUSTED BY:

“Sumo Logic provides us instant visibility into AWS services.We were able to get AWS ELB dashboards in a few minutes,which was very impressive.”

Alex ZadorozhnyiDirector of Technology, Hootsuite

“Sumo Logic has allowed McGraw-Hill Education to move toAWS with confidence, enable real-time visibility across theentire stack, all at reduced TCO.”

Shane SheltonSr. Director of Application Performance & Development

Operations, McGraw Hill Education

“With Sumo Logic, we put the power in the hands of thepeople who can actually fix the problem. Our averageresponse times have reduced from hours to minutes and wecan detect and resolve any irregularities before they havethe potential to impact customers.”

Michael RidgwayDirector of Engineering, Carsales

“What Sumo Logic does for Hearst is to as an open the datafunnel up in such a way that everyone has access to thevalue that the data provides.”

Pauly ComtoisVP of DevOps, Hearst

CONTENT

90SOCIAL

84COMPANY

93TOTAL WEIGHTEDSCORE: 89

READ ALL 74 CUSTOMER SUCCESS REVIEWS FROM SUMO LOGIC USERS

9

ABOUT EXABEAMExabeam provides security intelligence and management solutions to help organizations of anysize protect their most valuable information. The Exabeam Security Intelligence Platform uniquelycombines a data lake for unlimited data collection at a predictable price, machine learning foradvanced analytics, and automated incident response into an integrated set of products. Theresult is the first modern security intelligence solution that delivers where legacy SIEM vendorshave failed. Built by seasoned security and enterprise IT veterans from Imperva, ArcSight, andSumo Logic.

TRUSTED BY:

"It wasn’t that we didn’t have the logs; we had those. Butthey were in many divergent locations, and it took ouranalysts lots of time to actually dig into those logs and findthem and put a story together. With Exabeam, it actuallyprovides us with a story."

Chris HymesDirector of Information Security, Hulu

"Exabeam is a window into everything that's being logged atBank of Hope. It gets all of our best work in one place."

Steve ■CharlestonBank of Hope

“We collect eight to 12 billion events per day. With Exabeam,almost overnight, we gained an immense operationalefficiency."

V.Jay LaRosaVice President, Global Security Architecture, ADP

“Exabeam has made my Tier 1 team more effective.”

Colin AndersonVP, Information Technology, Chief Information Security Officer,

Safeway

CONTENT

87SOCIAL

87COMPANY

82TOTAL WEIGHTEDSCORE: 87

READ ALL 17 CUSTOMER SUCCESS REVIEWS FROM EXABEAM USERS

10

ABOUT LOGGLYLoggly aims to empower the creators and operators of cloud-based services to operate flawlesslyand deliver great user experiences by knowing what's going on with their applications and why.Loggly's cloud-based log management solution shows you what matters by crunching throughhuge volumes of log data that no human could possibly read. Loggly is the world’s most popularcloud-based, enterprise-class log management solution, used by more than 6,000 happycustomers. Founded in 2009 and based in San Francisco, the company is backed by HarmonyPartners, Trinity Ventures, True Ventures, Matrix Partners, Cisco, Data Collective VentureCapital, and others.

TRUSTED BY:

"Loggly was a smarter choice for our cloud-based business,offering a painless adoption path with virtually no effort onour part and allowing us to accomplish the same things wehad from our Splunk solution at a fraction of the cost.”

Brock HaywoodDirector of Platform, SendHub

"Loggly allows us to be proactive rather than reactive. Wecan see errors and issues in our application before ourcustomers experience them, and we can solve those issuesvery quickly and efficiently.”

Jason BarthelDevOps Engineer, BambooHR

"The type of fast diagnosis, to find out if issues are one-off orsystemic, is something that we haven’t found outside ofLoggly."

Bryan TinsleySite Reliability Engineer, Peloton

"I know from practical experience that the type ofperformance I get from Loggly would require a $1-2 millionSplunk infrastructure. We have no capital expenditures, lowrecurring costs, and the ability to grow quickly."

Jorge De La TorreDevOps Engineer, Stanley Black & Decker

CONTENT

88SOCIAL

80COMPANY

74TOTAL WEIGHTEDSCORE: 85READ ALL 43 CUSTOMER SUCCESS REVIEWS FROM LOGGLY USERS

11

ABOUT EVENTTRACKEREventTracker, a Netsurion company, empowers organizations to successfully predict, prevent,detect, and respond to cybersecurity threats. The EventTracker SIEM platform unifies machinelearning, behavior analytics, and security orchestration, and has been recognized for 10 straightyears by Gartner on the Magic Quadrant for SIEM. EventTracker offers a suite of SIEM solutionsbuilt for any size company or budget. More and more organizations are seekingSIEM-as-a-Service to realize optimal security results. SIEMphonic builds on the EventTrackerplatform by delivering a Co-Managed SIEM service complete with 24/7 global SecurityOperations Center (SOC), powered by threat intelligence.

TRUSTED BY:

"EventTracker really helps us when working with Audit andCompliance personnel, plus its forensic capabilities aregreat."

Alex MaynardCentral’s Technical Security Specialist, Credit Union Central of

Ontario

“There are hundreds of attacks against our internetconnection every day, but with EventTracker I feel saferknowing that I have alerts and a secure audit trail in theevent there is an incident.”

Shan VenableVice President Incharge of IT, Darby Bank & Trust Company

‘‘The co-op community is different than the rest of thebusiness world. When we find a solution that works, we letother coops know. We’ve been thrilled with what we get fromEventTracker and we were thrilled enough to share the greatresults.’’

Tim PeedeVice President of IT and CIO, South River EMC

"We were impressed with EventTracker since it provided uswith far better functionality than other log managementsolutions at a much more affordable price and also deliveredtremendous value in terms of increased efficiency andsavings in time."

Michel VereshchatskySenior Application Analyst, College of Humanities, The

University of Arizona

CONTENT

86SOCIAL

83COMPANY

82TOTAL WEIGHTEDSCORE: 85

READ ALL 35 CUSTOMER SUCCESS REVIEWS FROM EVENTTRACKER USERS

12

ABOUT CYGILANTCygilant is passionate about helping organizations build a comprehensive enterprise-classsecurity program. Their goal is to be the #1 customer-centric organization in the IT Securityindustry. Cygilant, a pioneer in hybrid security as a service, provides continuous securityoperations based on best-of-breed technology at a fraction of the cost of alternate solutions.Cygilant is a trusted advisor to organizations that need to improve their IT security andcompliance posture and protect against cyber threats and vulnerabilities.

TRUSTED BY:

"As far as I’m concerned, the Cygilant services are moreintuitive than the other products we’ve reviewed. It’sabsolutely the best value and IT investment to make!"

Sherry HoreanopoulosInformation Security Officer, Fitchburg State University

"Cygilant is the perfect IT security partner for ourorganization. Not only does Cygilant help us meet oursecurity assessment goals, it keeps us well-protected at alltimes."

Jim MillerSenior Network Engineer, Mount Wachusett Community

College

"Now with both of Cygilant’s security services combined, Ican be much more proactive in seeing what’s happening inmy network and I have the added bonus of an amazingcompany to help me identify and fix issues quickly andefficiently."

Andrew BezenahInformation Technology & Information Security Manager, Gold

Star Mortgage Financial Group

"My team’s days of digging through tons of messy logs areover. Now Cygilant’s SOCVue Security Monitoring servicefilters our vast number of events down to a clean snapshotview so we can confidently see what’s taking place in ournetwork."

Greg Beltzer, SeniorVice President of Information Technology, Williams Financial

Group

CONTENT

86SOCIAL

84COMPANY

70TOTAL WEIGHTEDSCORE: 84

READ ALL 23 CUSTOMER SUCCESS REVIEWS FROM CYGILANT USERS

13

ABOUT LOGENTRIESLogentries (by Rapid7) is the leading real-time log management and analytics service built for thecloud, making business insights from machine-generated log data easily accessible todevelopment, IT and business operations teams of all sizes. With the broadest platform supportand an open API, Logentries brings the value of log-level data to any system, to any teammember, and to a community of more than 35,000 worldwide users. While traditional logmanagement and analytics solutions require advanced technical skills to use, and are costly toset-up, Logentries provides an alternative designed for managing huge amounts of data,visualizing insights that matter, and automating in-depth analytics and reporting across its globaluser community.

TRUSTED BY:

"At Boxever our systems are mission critical. Logentrieshelps us keep them up and running 24X7, and provides ouroperations and development teams with the actionableinformation we need to stay ahead of complications beforethey arise."

Dave O’FlanaganCEO, Boxever

"I used to settle for knowing there were certain insights Isimply wouldn’t uncover because I couldn’t interrupt our devteam. Logentries now enables me to identify problems andpatterns I couldn’t see before."

Sean McGlincheyChief Data Officer, Yummly

"We were constantly running into the same issue -pinpointing specific events when errors arose was difficultand time-consuming. We knew there was a better solutionout there."

Nick AndrenDeveloper, TrackIf

"We made a great decision – Logentries’ ability to displayproduction logs across the entire architecture with read-onlyaccess for developer and QA teams has been a huge boostto productivity. And the support has been fantastic."

Colin EbertOperations, Innotas

CONTENT

85SOCIAL

80COMPANY

74TOTAL WEIGHTEDSCORE: 83

READ ALL 30 CUSTOMER SUCCESS REVIEWS FROM LOGENTRIES USERS

14